Zum Hauptinhalt springen

Nachrichten

TYPO3 Developers—Get Certified!

The TYPO3 Association launched the official TYPO3 certification program more than a decade ago. Today, we offer four certification streams and one of…

21 April 2020: TYPO3 v10 LTS Release and Party

The General Assembly is only the second reason why the date has been moved. The primary reason is that the original date (7 April 2020, two weeks…

TYPO3-EXT-SA-2019-023: CSRF in extension "femanager" (femanager)
  • Release Date: December 17, 2019
  • Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
  • Vulnerabili…
TYPO3-EXT-SA-2019-022: Privilege Escalation in extension "femanager direct mail subscription" (femanager_dmail_subscribe)
  • Release Date: December 17, 2019
  • Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
  • Vulnerabili…
TYPO3-EXT-SA-2019-021: Cross Site Scripting in extension "File List" (file_list)
  • Release Date: December 17, 2019
  • Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
  • Vulnerabili…
TYPO3-EXT-SA-2019-020: CSRF in extension "Change password for frontend users" (fe_change_pwd)
  • Release Date: December 17, 2019
  • Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
  • Vulnerabili…
TYPO3-EXT-SA-2019-019: Multiple vulnerabilities in extension "MKSamlAuth" (mksamlauth)
  • Release Date: December 17, 2019
  • Component Type: Third party extension. This extension is not a part of the TYPO3 default installation.
  • Vulnerabili…
TYPO3 10.2.2, 9.5.13 and 8.7.30 security releases published

The TYPO3 Community announces the versions 10.2.2, 9.5.13 LTS and 8.7.30 LTS of the TYPO3 Enterprise Content Management System.

TYPO3-CORE-SA-2019-026: Insecure Deserialization in Query Generator & Query View
  • Component Type: TYPO3 CMS
  • Subcomponent: Query Generator & Query View (ext:lowlevel, ext:core)
  • Release Date: December 17, 2019
  • Vulnerability Type:
TYPO3-CORE-SA-2019-025: SQL Injection in low-level Query Generator
  • Component Type: TYPO3 CMS
  • Subcomponent: Query Generator (ext:lowlevel)
  • Release Date: December 17, 2019
  • Vulnerability Type: SQL Injection
  • Affecte…
TYPO3-CORE-SA-2019-024: Directory Traversal on ZIP extraction
  • Component Type: TYPO3 CMS
  • Subcomponent: Extension Manager (ext:extensionmanger)
  • Release Date: December 17, 2019
  • Vulnerability Type: Directory…
TYPO3-CORE-SA-2019-023: Cross-Site Scripting in Filelist Module
  • Component Type: TYPO3 CMS
  • Subcomponent: Filelist Module (ext:filelist)
  • Release Date: December 17, 2019
  • Vulnerability Type: Cross-Site Scripting
TYPO3-CORE-SA-2019-022: Cross-Site Scripting in Link Handling
  • Component Type: TYPO3 CMS
  • Subcomponent: Link Handling (ext:core, ext:frontend)
  • Release Date: December 17, 2019
  • Vulnerability Type: Cross-Site…
TYPO3-CORE-SA-2019-021: Cross-Site Scripting in Form Framework validation handling
  • Component Type: TYPO3 CMS
  • Subcomponent: Form Framework (ext:form)
  • Release Date: December 17, 2019
  • Vulnerability Type: Cross-Site Scripting
  • Affec…
TYPO3-PSA-2019-011: Possible Insecure Deserialization in Extbase Request Handling
  • Component Type: TYPO3 CMS
  • Subcomponent: Extbase Request Handling (ext:extbase)
  • Release Date: December 17, 2019
  • Impact: Possible Insecure…
TYPO3-PSA-2019-010: Cross-Site Scripting Vulnerabilities in File Upload Handling

It has been discovered that TYPO3 is susceptible to cross-site scripting.

The TYPO3 Association Budget Committee made a strategic selection of 9 topics to pursue from a pool of 13 submitted budget ideas.

The committee…

As the Expert Advisory Board will be disbanded and replaced by the Board, all eight positions in the Board will be elected by the members of the TYPO3…

TYPO3 v10.2 is out now — the last sprint release of the year. A lot of functionality was developed during the TYPO3 Initiative Week (T3INIT19) and…

Sign Up for a Free Educational SkillDisplay Membership

The TYPO3 Academic Committee is the interface between universities and the TYPO3 community. To…

24 participants from 8 initiatives met for 1 week in Festenburg, Oberharz, Germany to communicate, collaborate and connect with each other and bring…

The 14th TYPO3 Conference is a wrap! This is the main event for the business community in the TYPO3 ecosystem. Sharing knowledge around building your…

Find out more about the event:

Impressions from T3DD with quotes from more speakers and attendees.

What’s Up, Docs?

TYPO3 Developer Days is a great…

Find out more

When possible, speakers have posted links to their slides in their talk descriptions in the program. The Documentation Team also got…

TYPO3 9.5.11 and 8.7.29 maintenance releases published

The TYPO3 Community announces the versions 9.5.11 LTS and 8.7.29 LTS of the TYPO3 Enterprise Content Management System.

TYPO3-PSA-2019-009: Truncated passwords during authentication process on typo3.org services
  • Release Date: October 30, 2019
  • Component Type: LDAP passwort storage & authentication (via my.typo3.org)
  • Impact: Truncated password during…
Freelancer-Profil von Bill Hunt aus Brighton, Bill Hunt, Freelance Public Relations Consultant, Web Designer and Social Media Manager UK

Freelancer-Profil von Bill Hunt aus Brighton, Bill Hunt, Freelance Public Relations Consultant, Web Designer and Social Media Manager UK

An…

Press Release: TYPO3 Awards Highlight CMS Project Excellence at Industry Summit

To great fanfare, 17 prizes were announced at this year’s TYPO3 Awards ceremony in The Hague. German agency Zdreicom AG received the Website of the…

Freelancer-Profil von Kelvyn Rodrigues aus Cacoal, Video editor and graphic designer

Freelancer-Profil von Kelvyn Rodrigues aus Cacoal, Video editor and graphic designer

Hello i'm Kelvyn and it will be a pleasure to deliver the best…

Freelancer-Profil von Tulio Carvalho aus Sorocaba, SAP ABAP Consultant with more than ten years of experience and English laguage

Freelancer-Profil von Tulio Carvalho aus Sorocaba, SAP ABAP Consultant with more than ten years of experience and English laguage

  • Experience as a SAP…